CVE-2016-6367

Confirmed PUBLISHED

Cisco Adaptive Security Appliance (ASA) Software before 8.4(1) on ASA 5500, ASA 5500-X, PIX, and FWSM devices allows local users to gain privileges...

Vendor: Cisco Product: Adaptive Security Appliance (ASA) Software
Exploited in the wild

Recommended Action

Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.

Confidence
Confirmed
Exploitation Status
Exploited in the wild
Observed in Sensors
No
Attempts (30d)
Unique Attacker IPs
CISA KEV
In CISA KEV
CVSS / EPSS
7.8 High EPSS 22.6%

At a Glance

Cisco Adaptive Security Appliance (ASA) Software before 8.4(1) on ASA 5500, ASA 5500-X, PIX, and FWSM devices allows local users to gain privileges via invalid CLI commands, aka Bug ID CSCtu74257 or EPICBANANA.

cisa edge
CVE Published
Aug 18, 2016
Exploitation Reported
May 24, 2022
CVSS
7.8 High
EPSS
22.6%
Low complexity No user interaction

CVE References

Show 2 more references